﻿Public Class DOSecurity

    ''' <summary>
    ''' Escapes an input string to provide protection against single apostrophes in WHERE clauses
    ''' </summary>
    ''' <param name="str"></param>
    ''' <returns></returns>
    ''' <remarks></remarks>
    Public Shared Function EscapeString(ByVal str As String) As String
        Return Replace(str, "'", "''")
    End Function

End Class
